CVE 2.6 LOW

CVE-2025-61873_CVE-2025-61873

2.6 / 10
LOW
CVSS:3.1/AV:N/AC:H/PR:H/UI:R/S:C/C:N/I:L/A:N

Description

Best Practical Request Tracker (RT) before 4.4.9, 5.0.9, and 6.0.2 allows CSV Injection via ticket values when TSV export is used.

Basic Information

ID CVE-2025-61873
Source mitre
Published Jan 16, 2026 at 00:00
Modified Jan 16, 2026 at 18:31

Affected Product

Vendor bestpractical
Product Request Tracker
Affected Versions bestpractical Request Tracker 0
bestpractical Request Tracker 5.0
bestpractical Request Tracker 6.0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.